Local File Deletion Vulnerability in ASUS System Control Interface
CVE-2022-36439
Key Information:
- Vendor
Asus
- Vendor
- CVE Published:
- 18 October 2022
What is CVE-2022-36439?
AsusSoftwareManager.exe within the ASUS System Control Interface on ASUS personal computers running Windows allows unauthorized local users to manipulate files in the Temp directory. Specifically, this vulnerability permits a local user to not only write to the Temp directory but also delete higher privileged files, which could potentially compromise system integrity. The affected versions of the ASUS System Control Interface, AsusSoftwareManger.exe, and AsusLiveUpdate.dll reflect a significant security risk that needs to be addressed promptly.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved